First published: Fri Nov 19 2004(Updated: )
Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Perl Archive::Zip | =1.13 | |
Broadcom ARCserve Backup | =11.1 | |
Broadcom eTrust Antivirus | =7.0 | |
Broadcom eTrust Antivirus | =7.1 | |
CA eTrust Anti-Virus Gateway | =7.0 | |
CA eTrust Anti-Virus Gateway | =7.1 | |
Broadcom eTrust EZ Antivirus | =6.1 | |
Broadcom eTrust EZ Antivirus | =6.2 | |
Broadcom eTrust EZ Antivirus | =6.3 | |
Broadcom eTrust EZ Armor | =2.0 | |
Broadcom eTrust EZ Armor | =2.3 | |
Broadcom eTrust EZ Armor | =2.4 | |
Broadcom eTrust Intrusion Detection | =1.4.1.13 | |
Broadcom eTrust Intrusion Detection | =1.4.5 | |
Broadcom eTrust Intrusion Detection | =1.5 | |
Broadcom Secure Content Manager | =1.0 | |
Broadcom Secure Content Manager | =1.1 | |
Broadcom InoculateIT | =6.0 | |
Broadcom eTrust Antivirus | =7.0_sp2 | |
Broadcom Secure Content Manager | =1.0-sp1 | |
ESET NOD32 Antivirus | =1.0.11 | |
ESET NOD32 Antivirus | =1.0.12 | |
ESET NOD32 Antivirus | =1.0.13 | |
Kaspersky Anti-Virus | =3.0 | |
Kaspersky Anti-Virus | =4.0 | |
Kaspersky Anti-Virus | =5.0 | |
McAfee Antivirus Engine | =4.3.20 | |
RAV Antivirus Desktop | =8.6 | |
rav Antivirus for file servers | =1.0 | |
rav Antivirus for mail servers | =8.4.2 | |
Sophos Anti-Virus | =3.4.6 | |
Sophos Anti-Virus | =3.78 | |
Sophos Anti-Virus | =3.78d | |
Sophos Anti-Virus | =3.79 | |
Sophos Anti-Virus | =3.80 | |
Sophos Anti-Virus | =3.81 | |
Sophos Anti-Virus | =3.82 | |
Sophos Anti-Virus | =3.83 | |
Sophos Anti-Virus | =3.84 | |
Sophos Anti-Virus | =3.85 | |
Sophos Anti-Virus | =3.86 | |
Sophos PureMessage Anti-virus | =4.6 | |
Sophos Small Business Suite | =1.0 | |
Gentoo Linux | ||
Gentoo Linux | =1.4 | |
Mandrake Linux | =10.1 | |
Mandrake Linux | =10.1 | |
SUSE Linux | =9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2004-0935 is classified as high due to the ability for remote attackers to bypass antivirus protection.
To fix CVE-2004-0935, update any affected Eset Anti-Virus software to version 1.020 or later.
CVE-2004-0935 affects various antivirus products including Eset NOD32 Antivirus and Broadcom eTrust Antivirus versions prior to their respective patches.
CVE-2004-0935 specifically allows remote attackers to exploit the vulnerability, not local users.
Files that exploit CVE-2004-0935 are specifically compressed files with both local and global headers set to zero.